Scope: This part of IEC 62443 provides detailed technical control system component requirements (CRs) associated with the seven foundational requirements (FRs) described in IEC TS 62443-1-1 including defining the requirements for control system capability security levels and their components, SL-C (component).
As defined in IEC TS 62443-1-1 there are a total of seven foundational requirements (FRs):a) identification and authentication control (IAC),b) use control (UC),c) system integrity (SI),d) data confidentiality (DC),e) restricted data flow (RDF),f) timely response to events (TRE), andg) resource availability (RA).
These seven FRs are the foundation for defining control system security capability levels. Defining security capability levels for the control system component is the goal and objective of this document as opposed to SL-T or achieved SLs (SL-A), which are out of scope.
NOTE 1 Refer to IEC 62443-2-1 [1] for an equivalent set of non-technical, program-related, capability
requirements necessary for fully achieving a SL-T(control system).
NOTE 2 The trademarks and trade names mentioned in this document are given for the convenience of users of this document. This information does not constitute an endorsement by IEC of the products named.Cross References:IEC 62443-4-1IEC/TS 62443-1-1IEC TS 62443-1-1EN IEC 62443-4-1IEC 62443-3-3:2013NIST SP 800-92EN 62443-3-2EN 62264-1IEC 60050-351IEC 62443-2-4ISO/IEC 19790NIST SP800-63-2IEC TR 62443-3-1NIST SP 800-57IEC 62264-1FIPS 140-2IEC 62443-2-1IEC 60050-732IEC 61131-3ANSI/ISA-95.00.01-2010IEC 62443-3-2IEC TR 62443-2-3ISO/IEC 8601:2004EN ISO/IEC 27002:2017ISO/IEC 15408-1:2009ISO/IEC 11889-1:2015IEC TR 61850-1:2013ISO/IEC 7498-1:1994ISO/IEC 27002:2013All current amendments available at time of purchase are included with the purchase of this document.